DD CEN/TS 15480-3:2010
Superseded
A superseded Standard is one, which is fully replaced by another Standard, which is a new edition of the same Standard.
View Superseded by
Identification card systems. European citizen card European citizen card interoperability using an application interface
Hardcopy , PDF
30-04-2014
English
31-01-2011
Foreword
1 Scope
2 Normative references
3 Terms and definitions
4 Symbols and abbreviations
5 ECC fitting in ISO/IEC 24727 model
6 Card Discovery Mechanisms
7 Authentication protocols
8 IFD-API Web Service Binding
9 Card-Info Structure
10 XML-based Service Access Layer Interface
Annex A (informative) - Interface Device Layer Architecture
and Management
Annex B (informative) - Interface Device API
Annex C (informative) - IFD-API - C Language Binding
Annex D (informative) - Examples of Cryptographic Information
Application for Card-Application Service Description
Annex E (informative) - SAL-API Post-issuance personalization
request
Annex F (informative) - Additional features versus ISO/IEC 24727
Annex G (informative) - C-Language Binding for ExecuteSAL
function
Annex H (informative) - Java-Language Binding for ExecuteSAL
function
Annex I (informative) - XML-Binding for Authentication Protocols
Annex J (informative) - API for ISO/IEC 7816-15 data structures
handling
Annex K (informative) - Global Profile 4: card requirements to
access/offer services in ISO/IEC 24727 framework
Bibliography
Gives an Interoperability Model, which will enable an e-Service compliant with technical requirements, to interoperate with different implementations of the European Citizen Card.
Committee |
IST/17
|
DocumentType |
Standard
|
Pages |
306
|
PublisherName |
British Standards Institution
|
RevisionOf | |
Status |
Superseded
|
SupersededBy |
ECC part 3 will provide an Interoperability Model, which will enable an eService compliant with technical requirements, to interoperate with different implementations of the European Citizen Card.
This Interoperability model will be developed as follows:
starting from the ECC part 2, part 3 of the ECC series will provide additional technical specifications for a middleware architecture based on ISO/IEC 24727. This middleware will provide an API to an eService as per ISO/IEC 24727-3;
a set of additional API provide the middleware stack with means to facilitate ECC services;
a standard mechanism for the validation of the e-ID credential stored in the ECC and retrieved by the service.
In order to support the ECC services over an ISO/IEC 24727 middelware configuration, this part of the standard specifies the following:
a set of mandatory requests to be supported by the middleware implementation based on ISO/IEC 24727;
data set content for interoperability to be personalized in the ECC;
two middleware architecture solutions: one based on a stack of combined ISO/IEC 24727 configurations and the other based on Web Service configuration;
a Global Profile featuring the guidelines for card-applications to fit in ISO/IEC 24727 framework.
Standards | Relationship |
CEN/TS 15480-3:2010 | Identical |
ISO/IEC 7816-6:2016 | Identification cards — Integrated circuit cards — Part 6: Interindustry data elements for interchange |
ISO/IEC 19794-2:2011 | Information technology — Biometric data interchange formats — Part 2: Finger minutiae data |
ISO/IEC 9798-3:1998 | Information technology Security techniques Entity authentication Part 3: Mechanisms using digital signature techniques |
ISO/IEC 24727-1:2014 | Identification cards Integrated circuit card programming interfaces Part 1: Architecture |
ISO/IEC 24727-2:2008 | Identification cards Integrated circuit card programming interfaces Part 2: Generic card interface |
ISO/IEC 7816-8:2016 | Identification cards Integrated circuit cards Part 8: Commands and mechanisms for security operations |
ISO/IEC 7816-9:2004 | Identification cards Integrated circuit cards Part 9: Commands for card management |
ISO/IEC 14443-4:2016 | Identification cards Contactless integrated circuit cards Proximity cards Part 4: Transmission protocol |
ISO/IEC 7816-4:2013 | Identification cards Integrated circuit cards Part 4: Organization, security and commands for interchange |
ISO/IEC 7816-3:2006 | Identification cards — Integrated circuit cards — Part 3: Cards with contacts — Electrical interface and transmission protocols |
ISO/IEC 24727-4:2008 | Identification cards Integrated circuit card programming interfaces Part 4: Application programming interface (API) administration |
ISO/IEC 9796-2:2010 | Information technology Security techniques Digital signature schemes giving message recovery Part 2: Integer factorization based mechanisms |
ISO/IEC 15946-2:2002 | Information technology Security techniques Cryptographic techniques based on elliptic curves Part 2: Digital signatures |
ISO/IEC 10118-3:2004 | Information technology Security techniques Hash-functions Part 3: Dedicated hash-functions |
ISO/IEC 7812-1:2017 | Identification cards — Identification of issuers — Part 1: Numbering system |
EN 1332-4:2007 | Identification card systems - Man-machine interface - Part 4: Coding of user requirements for people with special needs |
ISO 3166-1:2013 | Codes for the representation of names of countries and their subdivisions Part 1: Country codes |
ANSI X9.63 : 2011 | FINANCIAL SERVICES - PUBLIC KEY CRYPTOGRAPHY FOR THE FINANCIAL SERVICES INDUSTRY, KEY AGREEMENT AND KEY TRANSPORT USING ELLIPTIC CURVE CRYPTOGRAPHY |
ISO/IEC 7816-15:2016 | Identification cards Integrated circuit cards Part 15: Cryptographic information application |
ISO/IEC 24727-3:2008 | Identification cards Integrated circuit card programming interfaces Part 3: Application interface |
EN 14890-1:2008 | Application Interface for smart cards used as Secure Signature Creation Devices - Part 1: Basic services |
ISO/IEC 7816-11:2004 | Identification cards Integrated circuit cards Part 11: Personal verification through biometric methods |
Access your standards online with a subscription
Features
-
Simple online access to standards, technical information and regulations.
-
Critical updates of standards and customisable alerts and notifications.
-
Multi-user online standards collection: secure, flexible and cost effective.